wikidsystems records
9 published records for vendor wikidsystems.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-352 Cross-Site Request Forgery (CSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2019-17120No exploit | A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow remote attackers towikidsystems · 2fa enterprise server · CWE-79 | Medium6.1 | — | 50.0% | Oct 17, 2019 |
36Monitor | CVE-2019-16917No exploit | WiKID Enterprise 2FA (two factor authentication) Enterprise Server through 4.2.0-b2047 is vulnerable to SQL injection through the searchDeviwikidsystems · two factor authentication enterprise server · CWE-89 | High8.8 | — | 2.1% | Oct 17, 2019 |
36Monitor | CVE-2019-17117No exploit | A SQL injection vulnerability in processPref.jsp in WiKID 2FA Enterprise Server through 4.2.0-b2053 allows an authenticated user to execute wikidsystems · 2fa enterprise server · CWE-89 | High8.8 | — | 1.7% | Oct 17, 2019 |
36Monitor | CVE-2019-17119No exploit | Multiple SQL injection vulnerabilities in Logs.jsp in WiKID 2FA Enterprise Server through 4.2.0-b2053 allow authenticated users to execute awikidsystems · two factor authentication enterprise server · CWE-89 | High8.8 | — | 1.7% | Oct 17, 2019 |
35Monitor | CVE-2019-17118No exploit | A CSRF issue in WiKID 2FA Enterprise Server through 4.2.0-b2053 allows a remote attacker to trick an authenticated user into performing uninwikidsystems · 2fa enterprise server · CWE-352 | High8.8 | — | 0.9% | Oct 17, 2019 |
24Monitor | CVE-2019-17116No exploit | A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow remote attackers towikidsystems · two factor authentication enterprise server · CWE-79 | Medium6.1 | — | 1.7% | Oct 17, 2019 |
24Monitor | CVE-2019-17114No exploit | A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allows remote attackers twikidsystems · two factor authentication enterprise server · CWE-79 | Medium6.1 | — | 1.7% | Oct 17, 2019 |
24Monitor | CVE-2019-17115No exploit | Multiple cross-site scripting (XSS) vulnerabilities in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow remote attackers to inject arbiwikidsystems · two factor authentication enterprise server · CWE-79 | Medium6.1 | — | 1.7% | Oct 17, 2019 |
17Monitor | CVE-2008-4763No exploit | Multiple cross-site scripting (XSS) vulnerabilities in sample.php in WiKID wClient-PHP 3.0-2 and earlier allow remote attackers to inject arwikidsystems · wclient-php · CWE-79 | Medium4.3 | — | 1.0% | Oct 27, 2008 |
- CVE-2019-1712039Monitor
A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow remote attackers to
MediumCVSS 6.1No exploitEPSS 50%wikidsystems · 2fa enterprise serverOct 17, 2019
- CVE-2019-1691736Monitor
WiKID Enterprise 2FA (two factor authentication) Enterprise Server through 4.2.0-b2047 is vulnerable to SQL injection through the searchDevi
HighCVSS 8.8No exploitEPSS 2%wikidsystems · two factor authentication enterprise serverOct 17, 2019
- CVE-2019-1711736Monitor
A SQL injection vulnerability in processPref.jsp in WiKID 2FA Enterprise Server through 4.2.0-b2053 allows an authenticated user to execute
HighCVSS 8.8No exploitEPSS 2%wikidsystems · 2fa enterprise serverOct 17, 2019
- CVE-2019-1711936Monitor
Multiple SQL injection vulnerabilities in Logs.jsp in WiKID 2FA Enterprise Server through 4.2.0-b2053 allow authenticated users to execute a
HighCVSS 8.8No exploitEPSS 2%wikidsystems · two factor authentication enterprise serverOct 17, 2019
- CVE-2019-1711835Monitor
A CSRF issue in WiKID 2FA Enterprise Server through 4.2.0-b2053 allows a remote attacker to trick an authenticated user into performing unin
HighCVSS 8.8No exploitEPSS 1%wikidsystems · 2fa enterprise serverOct 17, 2019
- CVE-2019-1711624Monitor
A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow remote attackers to
MediumCVSS 6.1No exploitEPSS 2%wikidsystems · two factor authentication enterprise serverOct 17, 2019
- CVE-2019-1711424Monitor
A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allows remote attackers t
MediumCVSS 6.1No exploitEPSS 2%wikidsystems · two factor authentication enterprise serverOct 17, 2019
- CVE-2019-1711524Monitor
Multiple cross-site scripting (XSS) vulnerabilities in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow remote attackers to inject arbi
MediumCVSS 6.1No exploitEPSS 2%wikidsystems · two factor authentication enterprise serverOct 17, 2019
- CVE-2008-476317Monitor
Multiple cross-site scripting (XSS) vulnerabilities in sample.php in WiKID wClient-PHP 3.0-2 and earlier allow remote attackers to inject ar
MediumCVSS 4.3No exploitEPSS 1%wikidsystems · wclient-phpOct 27, 2008